BB and infection

Help! Last night I installed a broadband connection and foolishly
allowed my daughter to use MSN without a firewall and seem to have
picked up something nasty. Every time that I connect to the internet
my computer closes an reboots. ( I'm usung a different machine and
dial up to post this) I've run AVG but it found nothing. Can anyone
out there suggest what to do next?

Advertisements

"Tonfen" <> wrote in message
news:...
> Help! Last night I installed a broadband connection and foolishly
> allowed my daughter to use MSN without a firewall and seem to have
> picked up something nasty. Every time that I connect to the internet
> my computer closes an reboots. ( I'm usung a different machine and
> dial up to post this) I've run AVG but it found nothing. Can anyone
> out there suggest what to do next?

First thing to try is to turn off automatic restart on system failure.
Control panel / system / advanced /startup and recovery settings.. This may
give you the opportunity to read the system log.

Advertisements

"Tonfen" <> wrote in message
news:...
> Help! Last night I installed a broadband connection and foolishly
> allowed my daughter to use MSN without a firewall and seem to have
> picked up something nasty. Every time that I connect to the internet
> my computer closes an reboots. ( I'm usung a different machine and
> dial up to post this) I've run AVG but it found nothing. Can anyone
> out there suggest what to do next?
>

I thought "Blaster" as soon as the machine started acting up. We were
infected by it about a year back but this doesnt show the "countdown"
dialog which, I think I remember was typical of all the varients. In
the Task Manager I cant see MSBLAST.EXE ----- ENBIEL.EXE etc.
I did open the event viwer as you suggested. It has logged events
between 16.51 on 24/02 and 19.02 today. What do I look for now ?

"Tonfen" <> wrote in message
news:...
>I thought "Blaster" as soon as the machine started acting up. We were
> infected by it about a year back but this doesnt show the "countdown"
> dialog which, I think I remember was typical of all the varients. In
> the Task Manager I cant see MSBLAST.EXE ----- ENBIEL.EXE etc.
> I did open the event viwer as you suggested. It has logged events
> between 16.51 on 24/02 and 19.02 today. What do I look for now ?

Look at all three logs in turn i.e. application, security and system.

Highlight by type ie. error, warning and information. See what you can glean
from them, probably most useful to start with the red flagged error
messages..

Nothing in security. Records of AVG running in application. In system
hundreds of error messages every few seconds whenever the machine was
connected to the internet. They are all "Access denied attempting to
launch a DCOMserver using a DefaultLaunchPremission." Most of the time
the user is Unavailable/Unavailable but sometimes it is Anonymous
Logon/ NT Authority. Is this a dialler at work? The 'NT Authority' is
horribly suggestive of Blaster. Whe do I go from here?

Share This Page

Welcome to Velocity Reviews!

Welcome to the Velocity Reviews, the place to come for the latest tech news and reviews.

Please join our friendly community by clicking the button below - it only takes a few seconds and is totally free. You'll be able to chat with other enthusiasts and get tech help from other members.
Sign up now!